<?php
//       PHPcongrats - Holiday and Birthday Mailer
//     
//    Copyright (C) 2011  Matthias Nass
//
//    This program is free software; you can redistribute it and/or modify it under the terms of the GNU General Public License as published by the Free Software Foundation; either version 3 of the License, or (at your option) any later version.
//
//    This program is distributed in the hope that it will be useful, but WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License for more details.
//
//    You should have received a copy of the GNU General Public License along with this program; if not, see <http://www.gnu.org/licenses/>.
session_start();

if ($_SESSION['loggedin'] == true){
	include "./DBconnect.php";
	

		$query = "UPDATE users SET  firstname='".mysql_real_escape_string($_POST['firstname'])."',
					lastname='".mysql_real_escape_string($_POST['lastname'])."',
					username= '".mysql_real_escape_string($_POST['username'])."',
					email= '".mysql_real_escape_string($_POST['email'])."',
					changed=CURRENT_TIMESTAMP 
					WHERE id=".(int)$_POST['id'].";";

		$result = mysql_db_query($database, $query, $link);
		mysql_close($link);
		if ($result != false){
			$_SESSION['message'] = "Daten ge&auml;ndert";
			$location_to_jump = "Location: http:./users.php";
			header( $location_to_jump );
		}
		else{
			$_SESSION['message'] = $query;
			$location_to_jump = "Location: http:./users.php";
			header( $location_to_jump );
		}	

} else{
	$_SESSION['last_location'] = "./useradd.php";
	header( 'Location: http:./login.php' );
}
?>
